doubo1871 2012-06-19 17:14
浏览 42
已采纳

逃避MySQL PHP

Does someone knows why the mysql_real_escape_string() function adds three backslashes before quotes, or double quotes, instead of one?

I'm seeing a problem when I retrieve content; there is an extra backslash. This happens only with Aruba MySQL server. On localhost it works great.

Could this be the particular collation? What can I do for this? (Except brute-force removal of the slash?)

  • 写回答

1条回答 默认 最新

  • dongshike7171 2012-06-19 17:22
    关注

    Your problem could be that magic_quotes_gpc is enabled:

    It is best to look at your PHP configuration file (php.ini) and make sure it is disabled:

    magic_quotes_gpc = Off
    

    if you turn it on and you use mysql_real_escape_string, then you end up double escaping your quotes which is NOT good.

    http://www.php-developer.org/best-practices-of-mysql_real_escape_string-function-in-php/

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论

报告相同问题?

悬赏问题

  • ¥15 winform的chart曲线生成时有凸起
  • ¥15 msix packaging tool打包问题
  • ¥15 finalshell节点的搭建代码和那个端口代码教程
  • ¥15 用hfss做微带贴片阵列天线的时候分析设置有问题
  • ¥15 Centos / PETSc / PETGEM
  • ¥15 centos7.9 IPv6端口telnet和端口监控问题
  • ¥20 完全没有学习过GAN,看了CSDN的一篇文章,里面有代码但是完全不知道如何操作
  • ¥15 使用ue5插件narrative时如何切换关卡也保存叙事任务记录
  • ¥20 海浪数据 南海地区海况数据,波浪数据
  • ¥20 软件测试决策法疑问求解答